Permissions

User permission configuration and how the permissions relate to central server users.

Updating settings🔗

Permissions are configured on a per user basis, and this is done on the central server. See the central server documentation for an explanation of how to do this.

Settings available🔗

The following table lists the area and name of the permissions in the central server which are of relevance to Open mSupply. In the table, the description explains where this permission might be used in Open mSupply and why you may need to enable it.

In addition to these specific permissions, you'll need to ensure that the user has access to the store(s) which they'll be working in.

TabAreaPermissionDescription
PermissionsAdminAccess server administrationAllows access to the Synchronisation, Support, Devices and also, if on the central server, Configuration pages in the Settings section
ItemsManage locationsAllows a user to maintain locations
Edit itemsAble to edit items, required when saving a barcode
Edit Item names, codes and unitsCan maintain pack variants
View stockView stock lines
Edit stockModify stock lines
Create Repack Or Split StockCan create repack or split stock lines
Enter Inventory AdjustmentsCan maintain inventory adjustments
OrderingView purchase ordersCan view Purchase Orders
Edit purchase ordersCan create, edit and delete Purchase Orders and their lines
Authorise purchase ordersCan move a Purchase Order from Ready for Approval to Ready for Sending, and edit Adjusted packs once it is at Ready for Sending or later
Finalise purchase ordersCan confirm a Purchase Order as Finalised
Goods receivingView goods receivedCan view External Inbound Shipments
Add/edit goods receivedCan create, edit and delete External Inbound Shipments
Authorise goods receivedCan approve or reject External Inbound Shipment lines, when authorisation is enabled
Finalise goods receivedCan confirm External Inbound Shipments as Verified
SpecialAdd / edit prescribersCan add clinicians. In mSupply clinicians are called prescribers
Permissions (2)InvoicesView customer invoicesCan view Outbound Shipments and prescriptions. Also used to query statistics on the homepage
Create customer invoicesCan maintain Outbound Shipments and prescriptions
Edit customer invoicesCan maintain Outbound Shipments and prescriptions - if either edit or create permission is given the user can edit
Cancel finalised invoicesCan cancel Verified prescriptions
Return stock from supplier invoicesCan return stock from Inbound Shipments
View supplier invoicesCan view Inbound Shipments. Also used to query statistics on the homepage
Create supplier invoicesCan maintain Inbound Shipments
Edit supplier invoicesCan maintain Inbound Shipments - if either edit or create permission is given the user can edit
Finalise supplier invoicesCan confirm Inbound Shipments as Verified
Return stock from customer invoicesCan return stock from Outbound Shipments
ReportsView reportsRequired to print pages, as this uses the reporting system
PatientsView patientsCan view Patients
Add PatientsCan maintain Patients
Edit Patient DetailsCan maintain Patients - if either add or edit permission is given the user can edit
NamesEdit customer, supplier & manufacturer namesCan edit customer and supplier properties
Permissions (3)AdminView logAble to view the logs, these show as a tab on many windows
RequisitionsView requisitionsCan view Requisitions and R&R Forms
Create and edit requisitionsCan maintain Requisitions and R&R Forms
Create customer invoices from requisitionsCan create outbound shipments from requisition
StocktakesCreate StocktakeCan create Stocktakes
Delete StocktakeCan delete Stocktakes
Add Stocktake linesCan add Stocktake lines
Edit Stocktake linesCan edit Stocktake lines
Delete Stocktake linesCan delete Stocktake lines
VaccinesView sensor detailsCan view sensor details
Edit sensor locationCan edit sensor location
View and edit vaccine vial monitor statusCan view and edit vaccine vial monitor status on stock lines
AssetsView assetsCan view Assets
Add assets visa datamatrixCan add Assets via datamatrix scanning
Add, edit assetsCan maintain Assets
Change Asset statusCan change the status of Assets (e.g. Functioning, not in use)
Setup AssetsCan import Asset catalogue items
omSupply PermissionsInternal OrderConfirm Internal Order sentCan confirm Internal Orders as sent
API AccessCold chain API accessCan access the Cold Chain API
AdminCan modify central data (requires mSupply v7.15.05+)Can modify data managed by in the Open mSupply Central Server (e.g. Demographic Indicators, Immunization Programs)
View/edit prescriptionsGrants both the view and edit permissions for Prescriptions, including the homepage panel

The permissions which a user has within a store determines which menu items are available. If a user does not have permission to view an area then the corresponding menu item isn't shown. This allows the menu to be kept as simple as possible for users, only showing what they require.

Here is the list of menu items, and the permission or condition which is needed for it to show. Note that None in the permission column means that the item will show for all users.

Open mSupply menu itemLegacy mSupply permission requiredOther conditions
HomeNone—
Replenishment → Purchase ordersPermissions > Ordering > View purchase ordersProcurement enabled
Replenishment → Internal ordersPermissions (3) > Requisitions > View requisitions—
Replenishment → Inbound shipmentsPermissions (2) > Invoices > View supplier invoices—
Replenishment → Supplier returnsPermissions (2) > Invoices > View supplier invoices—
Replenishment → R&R formsPermissions (3) > Requisitions > View requisitionsProgram module enabled
Replenishment → SuppliersNone of its ownAt least one other Replenishment item is visible
Inventory → StockPermissions > Items > View stock—
Inventory → LocationsNone of its ownStock, Stocktakes or Stock movement is visible
Inventory → StocktakesPermissions > Items > View stock—
Inventory → Stock movementPermissions > Items > View stock—
Distribution → Customer requisitionsPermissions (3) > Requisitions > View requisitions—
Distribution → Outbound shipmentsPermissions (2) > Invoices > View customer invoices—
Distribution → Customer returnsPermissions (2) > Invoices > View customer invoices—
Distribution → CustomersNone of its ownAt least one other Distribution item is visible
Dispensary → PatientsPermissions (2) > Names > View patientsDispensary store
Dispensary → PrescriptionsOpen mSupply permissions > View/edit prescriptionsDispensary store
Dispensary → DispensingPermissions (2) > Invoices > View customer invoicesDispensary store
Dispensary → EncountersNoneDispensary store; program module enabled
Dispensary → CliniciansNone of its ownDispensary store; Prescriptions, Dispensing or Encounters is visible
Cold chain → EquipmentPermissions (3) > Assets > View assetsVaccine module enabled
Cold chain → MonitoringPermissions (3) > Vaccines > View sensor detailsVaccine module enabled
Cold chain → SensorsPermissions (3) > Vaccines > View sensor detailsVaccine module enabled
Programs → ImmunisationsNoneCentral server; vaccine module enabled
Catalogue → AssetsPermissions (3) > Assets > View assets—
Catalogue → ItemsNone—
Catalogue → Master listsNone—
Manage → StoresNoneCentral server
Manage → Indicators & demographicsNoneCentral server; vaccine module enabled
Manage → Global preferencesNoneCentral server
Manage → EquipmentPermissions (3) > Assets > View assetsCentral server; vaccine module enabled
Manage → CampaignsNoneCentral server
Manage → Custom fieldsPermissions > Admin > Access server administrationCentral server
Manage → SitesPermissions > Admin > Access server administrationCentral server
Manage → ReportsPermissions > Admin > Access server administrationCentral server
Manage → Sync messagePermissions > Admin > Access server administrationCentral server
Manage → PluginsPermissions > Admin > Access server administrationCentral server
Manage → Help documentsPermissions > Admin > Access server administrationCentral server
ReportsPermissions (2) > Reports > View reports—
SettingsNone—
HelpNone—
Plugin pages and sectionsWhatever the plugin declares; the user needs all of them—
A section heading (in bold above) disappears once all of its items are hidden.
In the current version of Open mSupply a user will require View reports permission to print forms. Be careful when removing the permission from users.